Vulnerability CVE-2022-3097


Published: 2022-10-25

Description:
The LBStopAttack WordPress plugin through 1.1.2 does not use nonces when saving its settings, making it possible for attackers to conduct CSRF attacks. This could allow attackers to disable the plugin's protections.

Type:

CWE-352

(Cross-Site Request Forgery (CSRF))

 References:
https://wpscan.com/vulnerability/9ebb8318-ebaf-4de7-b337-c91327685a43

Copyright 2026, cxsecurity.com

 

Back to Top